#gogs

[ follow ]
#cve-2025-8110
fromThe Hacker News
21 hours ago
Information security

Unpatched Gogs Zero-Day Exploited Across 700+ Instances Amid Active Attacks

A critical file-overwrite vulnerability (CVE-2025-8110, CVSS 8.7) in Gogs enables symlink-based arbitrary code execution and has been actively exploited across 700+ instances.
fromTheregister
1 day ago
Information security

700+ self-hosted Git instances battered in 0-day attacks

A zero-day (CVE-2025-8110) in Gogs enables remote code execution via symlink bypass, actively exploited across over 700 internet-exposed, open-registration instances.
[ Load more ]